installed-skill-auditor
Pass
Audited by Gen Agent Trust Hub on Mar 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is designed as a security monitoring tool. It performs regular expression matching and SHA-256 hashing to identify instruction injection, hardcoded secrets, and unauthorized file changes in other installed skills.
- [SAFE]: All operations are performed locally within the defined application directories. The script does not initiate network connections or attempt to exfiltrate data.
- [SAFE]: The use of a cron schedule is consistent with the skill's stated purpose of performing weekly security audits.
Audit Metadata